28787Third-party advisory
http://secunia.com/advisories/28787 CVE-2008-0457
Symantec Backup Exec System Recovery Manager 7.0 - FileUpload Class Unauthorized File Upload
Record summary
CVE-2008-0457 has a selected CVSS score of 10.0; EIP currently links 2 catalogued exploits.
Description
Unrestricted file upload vulnerability in the FileUpload class running on the Symantec LiveState Apache Tomcat server, as used by Symantec Backup Exec System Recovery Manager 7.0 and 7.0.1, allows remote attackers to upload and execute arbitrary JSP files via unknown vectors.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 2
Proofs of concept
2Catalogued exploits
ExploitDBSymantec Backup Exec System Recovery Manager 7.0 - FileUpload Class Unauthorized File UploadExploitDB exploitby titonNot analyzed1 file
ExploitDBBackup Exec System Recovery Manager 7.0.1 - Arbitrary File UploadExploitDB exploitby titonNot analyzed1 file
References
10seer.entsupport.symantec.comConfirmation
http://seer.entsupport.symantec.com/docs/297171.htm 20080206 ZDI-08-003: Symantec Backup Exec Remote File Upload Vulnerabilitymailing list
http://www.securityfocus.com/archive/1/487688/100/0/threaded 27487vdb entry
http://www.securityfocus.com/bid/27487 1019303vdb entry
http://www.securitytracker.com/id?1019303 symantec.comConfirmation
http://www.symantec.com/avcenter/security/Content/2008.02.04.html ADV-2008-0413vdb entry
http://www.vupen.com/english/advisories/2008/0413 zerodayinitiative.com
http://www.zerodayinitiative.com/advisories/ZDI-08-003.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2008-0457 5078exploit
https://www.exploit-db.com/exploits/5078